Vulnerabilities with Nuclei Scanner Templates

Updated 51m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,468 CVEs tracked 53,663 with exploits 4,859 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,324 vendors 43,878 researchers
4,077 results Clear all
CVE-2024-12732 6.1 MEDIUM NUCLEI EPSS 0.00
Cr1000 Affiliateimportereb < 1.0.6 - XSS
The AffiliateImporterEb WordPress plugin through 1.0.6 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 May 15, 2025
CVE-2024-12724 6.1 MEDIUM NUCLEI EPSS 0.00
Codeflock WP Desklite - XSS
The WP DeskLite WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 May 15, 2025
CVE-2024-11044 6.1 MEDIUM NUCLEI EPSS 0.01
Automatic1111 Stable-diffusion-webui - Open Redirect
An open redirect vulnerability in automatic1111/stable-diffusion-webui version 1.10.0 allows a remote unauthenticated attacker to redirect users to arbitrary websites via a specially crafted URL. This vulnerability can be exploited to conduct phishing attacks, distribute malware, and steal user credentials.
CWE-601 Mar 20, 2025
CVE-2024-10908 6.1 MEDIUM NUCLEI EPSS 0.01
Lm-sys Fastchat - Open Redirect
An open redirect vulnerability in lm-sys/fastchat Release v0.2.36 allows a remote unauthenticated attacker to redirect users to arbitrary websites via a specially crafted URL. This can be exploited for phishing attacks, malware distribution, and credential theft.
CWE-601 Mar 20, 2025
CVE-2024-10812 6.1 MEDIUM NUCLEI EPSS 0.01
Binary-husky Gpt Academic - Open Redirect
An open redirect vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability occurs when a user is redirected to a URL specified by user-controlled input in the 'file' parameter without proper validation or sanitization. This can be exploited by attackers to conduct phishing attacks, distribute malware, and steal user credentials.
CWE-601 Mar 20, 2025
CVE-2024-12824 9.8 CRITICAL NUCLEI EPSS 0.46
Nokri - Job Board WordPress Theme <1.6.2 - Privilege Escalation
The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.6.2. This is due to the plugin not properly checking for an empty token value prior updating their details like password. This makes it possible for unauthenticated attackers to change arbitrary user's password, including administrators, and leverage that to gain access to their account.
CWE-620 Mar 01, 2025
CVE-2024-12878 7.1 HIGH NUCLEI EPSS 0.02
Thedevoice Lazy Blocks < 3.8.3 - XSS
The Custom Block Builder WordPress plugin before 3.8.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Feb 26, 2025
CVE-2024-12737 6.1 MEDIUM NUCLEI EPSS 0.01
Wp-base WP Base Booking OF Appointments, Services And Events - XSS
The WP BASE Booking of Appointments, Services and Events WordPress plugin before 5.0.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Feb 26, 2025
CVE-2024-10152 7.1 HIGH NUCLEI EPSS 0.03
Simple Certain Time to Show Content <1.3.1 - XSS
The Simple Certain Time to Show Content WordPress plugin before 1.3.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Feb 26, 2025
CVE-2024-12638 7.1 HIGH NUCLEI EPSS 0.02
Ombu Bulk ME Now! < 2.0 - XSS
The Bulk Me Now! WordPress plugin through 2.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Jan 30, 2025
CVE-2024-12749 7.1 HIGH NUCLEI EPSS 0.02
Raiserweb Competition Form < 2.0 - XSS
The Competition Form WordPress plugin through 2.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Jan 29, 2025
CVE-2024-13094 7.1 HIGH NUCLEI EPSS 0.03
WP Triggers Lite <2.5.3 - XSS
The WP Triggers Lite WordPress plugin through 2.5.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Jan 27, 2025
CVE-2024-13055 7.1 HIGH NUCLEI EPSS 0.02
Dyn Business Panel <1.0.0 - XSS
The Dyn Business Panel WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Jan 27, 2025
CVE-2024-11396 5.3 MEDIUM 2 PoCs Analysis NUCLEI EPSS 0.54
Event Monster - Info Disclosure
The Event Monster – Event Management, Tickets Booking, Upcoming Event plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.4.3 via the Visitors List Export file. During the export, a CSV file is created in the wp-content folder with a hardcoded filename that is publicly accessible. This makes it possible for unauthenticated attackers to extract data about event visitors, that includes first and last names, email, and phone number.
CWE-359 Jan 14, 2025
CVE-2024-12585 6.1 MEDIUM NUCLEI EPSS 0.01
Wp-property-hive Propertyhive < 2.1.1 - XSS
The Property Hive WordPress plugin before 2.1.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Jan 08, 2025
CVE-2024-12849 7.5 HIGH 3 PoCs Analysis NUCLEI EPSS 0.93
Error Log Viewer By WP Guru <1.0.1.3 - Info Disclosure
The Error Log Viewer By WP Guru plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 1.0.1.3 via the wp_ajax_nopriv_elvwp_log_download AJAX action. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information.
CWE-22 Jan 07, 2025
CVE-2024-11972 9.8 CRITICAL EXPLOITED 6 PoCs Analysis NUCLEI EPSS 0.91
Hunk Companion WP <1.9.0 - Auth Bypass
The Hunk Companion WordPress plugin before 1.9.0 does not correctly authorize some REST API endpoints, allowing unauthenticated requests to install and activate arbitrary Hunk Companion WordPress plugin before 1.9.0 from the WordPress.org repo, including vulnerable Hunk Companion WordPress plugin before 1.9.0 that have been closed.
Dec 31, 2024
CVE-2024-12987 7.3 HIGH KEV NUCLEI EPSS 0.79
Draytek Vigor300b Firmware - Command Injection
A vulnerability, which was classified as critical, was found in DrayTek Vigor2960 and Vigor300B 1.5.1.4. Affected is an unknown function of the file /cgi-bin/mainfunction.cgi/apmcfgupload of the component Web Management Interface. The manipulation of the argument session leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.5.1.5 is able to address this issue. It is recommended to upgrade the affected component.
CWE-78 Dec 27, 2024
CVE-2024-11921 4.8 MEDIUM NUCLEI EPSS 0.02
GiveWP <3.19.0 - XSS
The GiveWP WordPress plugin before 3.19.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CWE-79 Dec 27, 2024
CVE-2024-11740 7.3 HIGH EXPLOITED NUCLEI EPSS 0.11
WordPress <3.3.03 - RCE
The The Download Manager plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.3.03. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.
CWE-94 Dec 19, 2024